{"id":13296650,"url":"https://github.com/msg-systems/web-security-workbook","last_synced_at":"2025-03-16T19:21:21.448Z","repository":{"id":41520711,"uuid":"503635892","full_name":"msg-systems/web-security-workbook","owner":"msg-systems","description":"The workbook for secure web-applications","archived":false,"fork":false,"pushed_at":"2022-11-08T10:40:41.000Z","size":7163,"stargazers_count":1,"open_issues_count":0,"forks_count":0,"subscribers_count":3,"default_branch":"main","last_synced_at":"2025-03-15T23:57:11.278Z","etag":null,"topics":["creative-commons","owasp-top-10","security","webtechnologies","webtechnology"],"latest_commit_sha":null,"homepage":"https://websecurityworkbook.com","language":"JavaScript","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/msg-systems.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null}},"created_at":"2022-06-15T06:03:11.000Z","updated_at":"2023-12-15T08:56:56.000Z","dependencies_parsed_at":"2023-01-22T15:31:13.949Z","dependency_job_id":null,"html_url":"https://github.com/msg-systems/web-security-workbook","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/msg-systems%2Fweb-security-workbook","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/msg-systems%2Fweb-security-workbook/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/msg-systems%2Fweb-security-workbook/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/msg-systems%2Fweb-security-workbook/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/msg-systems","download_url":"https://codeload.github.com/msg-systems/web-security-workbook/tar.gz/refs/heads/main","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":243918629,"owners_count":20368745,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["creative-commons","owasp-top-10","security","webtechnologies","webtechnology"],"created_at":"2024-07-29T17:20:53.987Z","updated_at":"2025-03-16T19:21:21.428Z","avatar_url":"https://github.com/msg-systems.png","language":"JavaScript","readme":"# msg Web Security Workbook\r\n\r\nThe workbook for secure web-applications\r\n\r\n## Preface\r\n\r\nThis [workbook](https://websecurityworkbook.com) is based on intensive research and evaluated by a master's thesis created at the Technical University of Munich in cooperation with msg Research.\r\n\r\nIt describes common vulnerabilities in developing and operating web-based software. Each security risk contains a short overview over its theoretical background and also insights into concrete implementations using frameworks and libraries. Based on literature, the OWASP Foundation, NIST and the BSI the solutions for these security risks implemented through frameworks and/or libraries are evaluated.\r\n\r\nThe security risks follow two the categories OWASP 2021 and General:\r\n\r\n* Under [OWASP 2021](https://websecurityworkbook.com/owasp2021/), a breakdown of OWASP's top 10 web application security risks of 2021 can be found.\r\n* [General](https://websecurityworkbook.com/general/) contains different tips and tricks to deal with security in web applications that exceed OWASP's list.\r\n* [Code Examples](https://websecurityworkbook.com/codeExamples) provides real examples of the security risks.\r\n\r\n\r\n\u003ca rel=\"license\" href=\"http://creativecommons.org/licenses/by-nc-nd/4.0/\"\u003e\u003cimg alt=\"Creative Commons BY-NC-ND 4.0 International License\" style=\"border-width:0\" src=\"https://i.creativecommons.org/l/by-nc-nd/4.0/88x31.png\" /\u003e\u003c/a\u003e\r\n\r\nThe **Web Security Workbook** is copyrighted by msg and distributed under a [Creative Commons BY-NC-ND 4.0 International License](https://creativecommons.org/licenses/by-nc-nd/4.0/). You may freely share this content for non-commercial purposes, with a source credited to [https://websecurityworkbook.com](https://websecurityworkbook.com).\r\n\r\n### Disclaimer\r\n\r\nThe information in this book is provided without warranty. The authors and publishers have neither liability nor responsibility to any person or entity related to any loss or damages arising from the informationen contained in this book.","funding_links":[],"categories":[],"sub_categories":[],"project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fmsg-systems%2Fweb-security-workbook","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fmsg-systems%2Fweb-security-workbook","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fmsg-systems%2Fweb-security-workbook/lists"}